Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Course Registration Management System Project Subscribe
Filtered by product Course Registration Management System
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-29663 1 Course Registration Management System Project 1 Course Registration Management System 2021-04-06 3.5 LOW 4.8 MEDIUM
CourseMS (aka Course Registration Management System) 2.1 is affected by cross-site scripting (XSS). When an attacker with access to an Admin account creates a Job Title in the Site area (aka the admin/add_jobs.php name parameter), they can insert an XSS payload. This payload will execute whenever anyone visits the registration page.